<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9">
  <url>
    <loc>https://cve.autoarticles.net/cve/CVE-2026-85596</loc>
    <news:news>
      <news:publication>
        <news:name>脆弱性対応ウォッチ</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T12:52:56+09:00</news:publication_date>
      <news:title>CVE-2026-85596 Traefik v3.7 の Kubernetes Ingress NGINX プロバイダで auth-tls-secret のクライアント証明書検証が無効化される（CVSS 9.8・v3.7.11 で修正）</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://cve.autoarticles.net/cve/CVE-2026-85595</loc>
    <news:news>
      <news:publication>
        <news:name>脆弱性対応ウォッチ</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T12:52:56+09:00</news:publication_date>
      <news:title>CVE-2026-85595 Traefik の digestAuth ミドルウェアで認証を完全にバイパスできる（CVSS 9.8・v2.11.55 / v3.7.11 で修正）</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://cve.autoarticles.net/cve/CVE-2026-85597</loc>
    <news:news>
      <news:publication>
        <news:name>脆弱性対応ウォッチ</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-21T12:52:56+09:00</news:publication_date>
      <news:title>CVE-2026-85597 Traefik でマルチホストのルータ設定によりクライアント証明書認証（mTLS）が既定設定へ落ちる（CVSS 9.1）</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://cve.autoarticles.net/cve/CVE-2025-39682</loc>
    <news:news>
      <news:publication>
        <news:name>脆弱性対応ウォッチ</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-20T12:23:48+09:00</news:publication_date>
      <news:title>CVE-2025-39682 Linux カーネルの TLS 受信でゼロ長レコードの扱いに不備（CVSS 7.1・KEV・是正期限 2026-09-21）</news:title>
    </news:news>
  </url>
  <url>
    <loc>https://cve.autoarticles.net/cve/CVE-2025-39964</loc>
    <news:news>
      <news:publication>
        <news:name>脆弱性対応ウォッチ</news:name>
        <news:language>ja</news:language>
      </news:publication>
      <news:publication_date>2026-09-20T12:23:48+09:00</news:publication_date>
      <news:title>CVE-2025-39964 Linux カーネルの af_alg で同時書き込みによる状態不整合（KEV・是正期限 2026-09-21）</news:title>
    </news:news>
  </url>
</urlset>